

Episode 113: Best Technical Takeaways from Portswigger Top 10 2024
Mar 6, 2025
Explore the fascinating world of web vulnerabilities as the hosts dive into the Portswigger Top 10 for 2024! Learn about OAuth hijacking and cookie tossing exploits that compromise security. They also unravel the vulnerabilities in PDF.js and the significant role of AI in application security. Discover the latest trends in bug hunting, including SQL injection, confusion attacks, and innovative techniques like the 'worst fit' algorithm for vulnerability discovery. The mix of personal stories and technical insights keeps the discussion engaging!
Chapters
Transcript
Episode notes
1 2 3 4 5 6 7 8 9 10 11
Intro
00:00 • 3min
The Importance of Focus in Bug Hunting
02:43 • 2min
Navigating AI Hacking: A Comprehensive Guide and Masterclass Announcement
04:58 • 2min
Exploring AI in Application Security and Portswigger's Top Web Research
06:36 • 2min
Vulnerability Trends and Cookie Injection Exploits
08:30 • 6min
Exploring Web Vulnerabilities: Caching and OAuth Insights
14:32 • 15min
Unraveling PDF.js Vulnerabilities
29:25 • 15min
Exploring DOM Purify and HTML Vulnerabilities
44:49 • 4min
An Unexpected Fame from Korea
49:02 • 2min
Programming Symbols and Security Insights
50:32 • 22min
Navigating Security Vulnerabilities
01:12:53 • 16min